Tracker / CVE-2021-4154
CVE-2021-4154
High 8.8
A use-after-free flaw was found in cgroup1_parse_param in kernel/cgroup/cgroup-v1.c in the Linux kernel's cgroup v1 parser. A local attacker with a user privilege could cause a privilege escalation by exploiting the fsconfig syscall parameter leading to a container breakout and a denial of service on the system.
Affected products and versions
| linux | linux_kernel |
|---|---|
| linux | linux_kernel · 5.1 → 5.4.134 |
| linux | linux_kernel · 5.11 → 5.12.19 |
| linux | linux_kernel · 5.13 → 5.13.4 |
| linux | linux_kernel · 5.5 → 5.10.52 |
| netapp | hci_baseboard_management_controller |
| redhat | enterprise_linux |
| redhat | virtualization |
Analysis
This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.